bind 서버 version 정보 외부에 제공하지 않게 하기
[nhko@nhkotest ~]$ dig @nhko.com txt chaos version.bind
; <<>> DiG 9.3.3rc2 <<>> @nhko.com txt chaos version.bind
; (1 server found)
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4133
;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0
;; QUESTION SECTION:
;version.bind. CH TXT
;; ANSWER SECTION:
version.bind. 0 CH TXT "9.4.3-P3"
;; AUTHORITY SECTION:
version.bind. 0 CH NS version.bind.
;; Query time: 0 msec
;; SERVER: xxx.xxx.xxx.xxx#53(xxx.xxx.xxx.xxx)
;; WHEN: Tue Nov 17 11:04:53 2009
;; MSG SIZE rcvd: 65
[/etc/named.conf]
options {
directory "/var/named";
allow-transfer { xxx.xxx.xxx.xxx; };
recursive-clients 3000;
//allow-recursion { our_trust_ip; };
allow-recursion { any; };
check-names master ignore;
version "Unknown"; ===> 추가
};
[nhko@nhkotest ~]$ dig @nhko.com txt chaos version.bind
; <<>> DiG 9.3.3rc2 <<>> @nhko.com txt chaos version.bind
; (1 server found)
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 22431
;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0
;; QUESTION SECTION:
;version.bind. CH TXT
;; ANSWER SECTION:
version.bind. 0 CH TXT "Unknown"
;; AUTHORITY SECTION:
version.bind. 0 CH NS version.bind.
;; Query time: 0 msec
;; SERVER: xxx.xxx.xxx.xxx#53(xxx.xxx.xxx.xxx)
;; WHEN: Tue Nov 17 11:05:21 2009
;; MSG SIZE rcvd: 64